Skip to content

Releases: Rynaro/magicite

v0.3.1

Choose a tag to compare

@github-actions github-actions released this 18 Aug 19:47
496e4ed

Container image

Pull by tag

docker pull ghcr.io/rynaro/magicite:0.3.1

Pull by digest (recommended — immutable pin)

docker pull ghcr.io/rynaro/magicite@sha256:d5dbb1f64affb7b2f4e7cb35e9b7aa42affbf0876d774574ed19ea48518fc73d

Multi-arch: linux/amd64 + linux/arm64

The house hardening invocation (AC-026)

docker run --rm -i \
    --user "$(id -u):$(id -g)" \
    --cap-drop ALL --security-opt no-new-privileges \
    -v "$PWD":"$PWD":z -w "$PWD" \
    ghcr.io/rynaro/magicite@sha256:d5dbb1f64affb7b2f4e7cb35e9b7aa42affbf0876d774574ed19ea48518fc73d \
    serve --project-root "$PWD"

Supply-chain verification

Verify the cosign keyless signature:

cosign verify \
  --certificate-identity-regexp "https://github.com/Rynaro/magicite/.github/workflows/release.yml@.*" \
  --certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
  ghcr.io/rynaro/magicite@sha256:d5dbb1f64affb7b2f4e7cb35e9b7aa42affbf0876d774574ed19ea48518fc73d

Verify SBOM + provenance attestations:

gh attestation verify oci://ghcr.io/rynaro/magicite@sha256:d5dbb1f64affb7b2f4e7cb35e9b7aa42affbf0876d774574ed19ea48518fc73d \
  --owner Rynaro

Digest for pinning

ghcr.io/rynaro/magicite@sha256:d5dbb1f64affb7b2f4e7cb35e9b7aa42affbf0876d774574ed19ea48518fc73d

What's Changed

  • Release Magicite 0.3.0 integrity recovery by @Rynaro in #2
  • Build a world-class Magicite README by @Rynaro in #3
  • Restore full-quality Magicite logo by @Rynaro in #4
  • Add a dark-mode Magicite logo by @Rynaro in #5
  • Fix Magicite logo rendering permanently by @Rynaro in #6
  • Preserve host SKILL.md imports losslessly by @Rynaro in #7

Full Changelog: v0.2.0...v0.3.1

v0.2.0

Choose a tag to compare

@github-actions github-actions released this 16 Aug 12:27

Container image

Pull by tag

docker pull ghcr.io/rynaro/magicite:0.2.0

Pull by digest (recommended — immutable pin)

docker pull ghcr.io/rynaro/magicite@sha256:486f3c510ad48d7e6a3ca32dfa2e40ba29b06e3572f13da9264e088834c87b67

Multi-arch: linux/amd64 + linux/arm64

The house hardening invocation (AC-026)

docker run --rm -i \
    --user "$(id -u):$(id -g)" \
    --cap-drop ALL --security-opt no-new-privileges \
    -v "$PWD":"$PWD":z -w "$PWD" \
    ghcr.io/rynaro/magicite@sha256:486f3c510ad48d7e6a3ca32dfa2e40ba29b06e3572f13da9264e088834c87b67 \
    serve --project-root "$PWD"

Supply-chain verification

Verify the cosign keyless signature:

cosign verify \
  --certificate-identity-regexp "https://github.com/Rynaro/magicite/.github/workflows/release.yml@.*" \
  --certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
  ghcr.io/rynaro/magicite@sha256:486f3c510ad48d7e6a3ca32dfa2e40ba29b06e3572f13da9264e088834c87b67

Verify SBOM + provenance attestations:

gh attestation verify oci://ghcr.io/rynaro/magicite@sha256:486f3c510ad48d7e6a3ca32dfa2e40ba29b06e3572f13da9264e088834c87b67 \
  --owner Rynaro

Digest for pinning

ghcr.io/rynaro/magicite@sha256:486f3c510ad48d7e6a3ca32dfa2e40ba29b06e3572f13da9264e088834c87b67

What's Changed

  • Dogfood Magicite: first-party engram registry, codebase tranche, and a self-contained .magicite/ by @Rynaro in #1

New Contributors

  • @Rynaro made their first contribution in #1

Full Changelog: v0.1.0...v0.2.0

v0.1.0

Choose a tag to compare

@github-actions github-actions released this 15 Aug 18:14

Container image

Pull by tag

docker pull ghcr.io/rynaro/magicite:0.1.0

Pull by digest (recommended — immutable pin)

docker pull ghcr.io/rynaro/magicite@sha256:d4de4eacbadea6f7e8fa73506dceae8e3d465088a2590c3d892deb096e03dc34

Multi-arch: linux/amd64 + linux/arm64

The house hardening invocation (AC-026)

docker run --rm -i \
    --user "$(id -u):$(id -g)" \
    --cap-drop ALL --security-opt no-new-privileges \
    -v "$PWD":"$PWD":z -w "$PWD" \
    ghcr.io/rynaro/magicite@sha256:d4de4eacbadea6f7e8fa73506dceae8e3d465088a2590c3d892deb096e03dc34 \
    serve --project-root "$PWD"

Supply-chain verification

Verify the cosign keyless signature:

cosign verify \
  --certificate-identity-regexp "https://github.com/Rynaro/magicite/.github/workflows/release.yml@.*" \
  --certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
  ghcr.io/rynaro/magicite@sha256:d4de4eacbadea6f7e8fa73506dceae8e3d465088a2590c3d892deb096e03dc34

Verify SBOM + provenance attestations:

gh attestation verify oci://ghcr.io/rynaro/magicite@sha256:d4de4eacbadea6f7e8fa73506dceae8e3d465088a2590c3d892deb096e03dc34 \
  --owner Rynaro

Digest for pinning

ghcr.io/rynaro/magicite@sha256:d4de4eacbadea6f7e8fa73506dceae8e3d465088a2590c3d892deb096e03dc34

Full Changelog: https://github.com/Rynaro/magicite/commits/v0.1.0